• [SECURITY] [DSA 3554-1] xen security update

    From Salvatore Bonaccorso@1:229/2 to All on Thu Apr 21 21:50:02 2016
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-3554-1 [email protected] https://www.debian.org/security/ Salvatore Bonaccorso
    April 21, 2016 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : xen
    CVE ID : CVE-2016-3158 CVE-2016-3159 CVE-2016-3960

    Multiple vulnerabilities have been discovered in the Xen hypervisor. The
    Common Vulnerabilities and Exposures project identifies the following
    problems:

    CVE-2016-3158, CVE-2016-3159 (XSA-172)

    Jan Beulich from SUSE discovered that Xen does not properly handle
    writes to the hardware FSW.ES bit when running on AMD64 processors.
    A malicious domain can take advantage of this flaw to obtain address
    space usage and timing information, about another domain, at a
    fairly low rate.

    CVE-2016-3960 (XSA-173)

    Ling Liu and Yihan Lian of the Cloud Security Team, Qihoo 360
    discovered an integer overflow in the x86 shadow pagetable code. A
    HVM guest using shadow pagetables can cause the host to crash. A PV
    guest using shadow pagetables (i.e. being migrated) with PV
    superpages enabled (which is not the default) can crash the host, or
    corrupt hypervisor memory, potentially leading to privilege
    escalation.

    For the stable distribution (jessie), these problems have been fixed in
    version 4.4.1-9+deb8u5.

    We recommend that you upgrade your xen packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1

    iQIcBAEBCgAGBQJXGS3gAAoJEAVMuPMTQ89E7yAP/3vSViYygQzMhOLjNKorm0HX TZef5rbAAxDQCrMS8b5OrtcgO+skpy+edOkNiokj7D7fN5idczRgYUQ5Pu3g9Bpb sQcsFg23a9VAniZbDsHCChwBI2/0GGHZK1ndMjcGpu7/8ExwXENAnenTW53UwsW/ /EFVtUjov4NEh0mfRaq0O7ZHi2+MIMWogXxThtz5OOod64kUrbSFl8alUw1vqZWj 5c+ftGUVP4cwCFWAAD6ihNvV65f0grlldkMx/bo5asdbwJ/qNlqtTIdaOf0/TDSE sRMFlte+sBaY5tg+B/l4qUUNMrtkF+QQ6a3nhcwqmnS9JslpG8WqKgurLyrj8kwk 2Y5nO2PfxlWgCo8UX6JiN+eRZdZ8yW8kt2voGCeVwBDDa7uPBnpLiK1H1XK4ydXh ZVerJqDwfRusTmnWC3lumw6yYUz+2IaG8qEp9aCOys4PpaR1zl7YbIToVIV02zo9 qYoH4FpDXRFraTOBndF8e15cH3v4Sxu/D5uTTz2upAOo5hz0tpQ9Mb0B+LoNCe/0 y5pHMESRnYCO0A2qjnftDREU3lumIFdwq9JqDEnDiPPjey8Afy+HwXoIqhdaDmZE 7uPRYt+FaDKzJcf9H/XdEMODAxaqJbiVzONfSLguN7y9aH/e4jHI2fR03NF852Bm L2r+gXVbptlDrx0ky9f6
    =xRiH
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)